CVE-2018-6350
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An out-of-bounds read was possible in WhatsApp due to incorrect parsing of RTP extension headers. This issue affects WhatsApp for Android prior to 2.18.276, WhatsApp Business for Android prior to 2.18.99, WhatsApp for iOS prior to 2.18.100.6, WhatsApp Business for iOS prior to 2.18.100.2, and WhatsApp for Windows Phone prior to 2.18.224.
Fue posible una lectura fuera de límites en WhatsApp debido a un análisis incorrecto de los encabezados de extensión RTP. Este problema afecta a WhatsApp para Android anterior a versión 2.18.276, WhatsApp Business para Android anterior a versión 2.18.99, WhatsApp para iOS anterior a versión 2.18.100.6, WhatsApp Business para iOS anterior a versión 2.18.100.2 y WhatsApp para Windows Phone anterior a versión 2.18. 224.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-01-26 CVE Reserved
- 2019-06-14 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-125: Out-of-bounds Read
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/108803 | Vdb Entry | |
https://www.facebook.com/security/advisories/cve-2018-6350 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | < 2.18.99 Search vendor "Whatsapp" for product "Whatsapp" and version " < 2.18.99" | android |
Affected
| ||||||
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | < 2.18.100.2 Search vendor "Whatsapp" for product "Whatsapp" and version " < 2.18.100.2" | business, iphone_os |
Affected
| ||||||
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | < 2.18.100.6 Search vendor "Whatsapp" for product "Whatsapp" and version " < 2.18.100.6" | iphone_os |
Affected
| ||||||
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | < 2.18.224 Search vendor "Whatsapp" for product "Whatsapp" and version " < 2.18.224" | windows_phone |
Affected
| ||||||
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | < 2.18.276 Search vendor "Whatsapp" for product "Whatsapp" and version " < 2.18.276" | business, android |
Affected
|